From 3c98d9bd4c1d92d6814173950ac4fa54df339d1d Mon Sep 17 00:00:00 2001 From: snyk-bot Date: Fri, 18 Jul 2025 09:50:52 +0000 Subject: [PATCH] fix: src/server/package.json & src/server/package-lock.json to reduce vulnerabilities The following vulnerabilities are fixed with an upgrade: - https://snyk.io/vuln/SNYK-JS-ONHEADERS-10773729 --- src/server/package-lock.json | 18 ++++++++++-------- src/server/package.json | 2 +- 2 files changed, 11 insertions(+), 9 deletions(-) diff --git a/src/server/package-lock.json b/src/server/package-lock.json index c061428..edac5e8 100644 --- a/src/server/package-lock.json +++ b/src/server/package-lock.json @@ -31,7 +31,7 @@ "miio": "^0.14.1", "moment": "^2.29.4", "mongoose": "^6.12.0", - "morgan": "^1.10.0", + "morgan": "^1.10.1", "node-gzip": "^1.1.2", "node-hue-api": "^5.0.0-beta.13", "ping": "^0.4.1", @@ -3871,15 +3871,16 @@ "integrity": "sha512-6FlzubTLZG3J2a/NVCAleEhjzq5oxgHyaCU9yYXvcLsvoVaHJq/s5xXI6/XXP6tz7R9xAOtHnSO/tXtF3WRTlA==" }, "node_modules/morgan": { - "version": "1.10.0", - "resolved": "https://registry.npmjs.org/morgan/-/morgan-1.10.0.tgz", - "integrity": "sha512-AbegBVI4sh6El+1gNwvD5YIck7nSA36weD7xvIxG4in80j/UoK8AEGaWnnz8v1GxonMCltmlNs5ZKbGvl9b1XQ==", + "version": "1.10.1", + "resolved": "https://registry.npmjs.org/morgan/-/morgan-1.10.1.tgz", + "integrity": "sha512-223dMRJtI/l25dJKWpgij2cMtywuG/WiUKXdvwfbhGKBhy1puASqXwFzmWZ7+K73vUPoR7SS2Qz2cI/g9MKw0A==", + "license": "MIT", "dependencies": { "basic-auth": "~2.0.1", "debug": "2.6.9", "depd": "~2.0.0", "on-finished": "~2.3.0", - "on-headers": "~1.0.2" + "on-headers": "~1.1.0" }, "engines": { "node": ">= 0.8.0" @@ -4169,9 +4170,10 @@ } }, "node_modules/on-headers": { - "version": "1.0.2", - "resolved": "https://registry.npmjs.org/on-headers/-/on-headers-1.0.2.tgz", - "integrity": "sha512-pZAE+FJLoyITytdqK0U5s+FIpjN0JP3OzFi/u8Rx+EV5/W+JTWGXG8xFzevE7AjBfDqHv/8vL8qQsIhHnqRkrA==", + "version": "1.1.0", + "resolved": "https://registry.npmjs.org/on-headers/-/on-headers-1.1.0.tgz", + "integrity": "sha512-737ZY3yNnXy37FHkQxPzt4UZ2UWPWiCZWLvFZ4fu5cueciegX0zGPnrlY6bwRg4FdQOe9YU8MkmJwGhoMybl8A==", + "license": "MIT", "engines": { "node": ">= 0.8" } diff --git a/src/server/package.json b/src/server/package.json index 31dac73..28467a0 100644 --- a/src/server/package.json +++ b/src/server/package.json @@ -26,7 +26,7 @@ "miio": "^0.14.1", "moment": "^2.29.4", "mongoose": "^6.12.0", - "morgan": "^1.10.0", + "morgan": "^1.10.1", "node-gzip": "^1.1.2", "node-hue-api": "^5.0.0-beta.13", "ping": "^0.4.1",